• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2019-12834

February 26, 2023 by

In HT2 Labs Learning Locker 3.15.1, it’s possible to inject malicious HTML and JavaScript code into the DOM of the website via the PATH_INFO to the dashboards/ URI.

CVE-2019-12842

February 26, 2023 by

A reflected XSS on a user page was detected on one of the JetBrains TeamCity pages. The issue was fixed in TeamCity 2018.2.2.

CVE-2019-12863

February 26, 2023 by

SolarWinds Orion Platform 2018.4 HF3 (NPM 12.4, NetPath 1.1.4) allows Stored HTML Injection by administrators via the Web Console Settings screen.

CVE-2019-12801

February 26, 2023 by

out/out.GroupMgr.php in SeedDMS 5.1.11 has Stored XSS by making a new group with a JavaScript payload as the “GROUP” Name.

CVE-2019-12823

February 26, 2023 by

Craft CMS before 3.1.31 does not properly filter XML feeds and thus allowing XSS.

CVE-2019-12748

February 26, 2023 by

TYPO3 8.3.0 through 8.7.26 and 9.0.0 through 9.5.7 allows XSS.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1186
  • Go to page 1187
  • Go to page 1188
  • Go to page 1189
  • Go to page 1190
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE